gemote.exe

www.RemoteABC.com

The executable gemote.exe, “Remote ABC Version 1.9” has been detected as malware by 34 anti-virus scanners. It runs as a windows Service named “gemote”.
Publisher:
www.RemoteABC.com

Product:
www.RemoteABC.com

Description:
Remote ABC Version 1.9

Version:
1.9.0.0

MD5:
8b8cad9793ca7e50e6e5cde5ea99d3ed

SHA-1:
4aec33c177bccae21fa05986189d9a6ae04b799b

Scanner detections:
34 / 68

Status:
Malware

Analysis date:
4/1/2025 8:08:45 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Backdoor.Delf.HSV
-40

Agnitum Outpost
Packed/NSPack
7.1.1

AhnLab V3 Security
Backdoor/Win32.Hupigon
2014.08.08

Avira AntiVirus
BDS/Hupigon.Gen
7.11.165.218

avast!
Win32:Malware-gen
2014.9-170315

AVG
BackDoor.Hupigon5
2018.0.2438

Baidu Antivirus
Backdoor.Win32.Hupigon
4.0.3.17315

Bitdefender
Backdoor.Delf.HSV
1.0.20.370

Bkav FE
W32.HfsAutoB
1.3.0.4959

Comodo Security
TrojWare.Win32.Trojan.NSPM.~gen
19114

Dr.Web
BackDoor.Pigeon.21219
9.0.1.074

Emsisoft Anti-Malware
Backdoor.Delf.HSV
8.17.03.15.06

ESET NOD32
Win32/Hupigon.NKJ
11.10219

F-Prot
W32/Heuristic-210
v6.4.7.1.166

F-Secure
Backdoor.Delf.HSV
11.2017-15-03_4

G Data
Backdoor.Delf.HSV
17.3.24

IKARUS anti.virus
Virus.Win32.Delf
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.183.12981

Kaspersky
Backdoor.Win32.Hupigon
14.0.0.-1314

Malwarebytes
Malware.NSPack
v2017.03.15.06

McAfee
RDN/BackDoor-AWQ!bv
5600.6094

Microsoft Security Essentials
Backdoor:Win32/Hupigon.DZ
1.10802

MicroWorld eScan
Backdoor.Delf.HSV
18.0.0.222

NANO AntiVirus
Trojan.Win32.Hupigon.jvor
0.28.2.61349

nProtect
Backdoor.Delf.HSV
14.08.07.01

Panda Antivirus
Trj/CI.A
17.03.15.06

Qihoo 360 Security
HEUR/Malware.QVM12.Gen
1.0.0.1015

Rising Antivirus
PE:Trojan.Win32.Generic.17091EEC!386473708
23.00.65.17313

Sophos
Mal/Packer
4.98

Trend Micro House Call
TROJ_GEN.R0CBC0CH114
7.2.74

Trend Micro
TROJ_GEN.R0CBC0CH114
10.465.15

Vba32 AntiVirus
BScope.Trojan.SvcHorse.01643
3.12.26.3

VIPRE Antivirus
Backdoor.Win32.Hupigon
32010

ViRobot
Backdoor.Win32.A.Hupigon.272651
2011.4.7.4223

File size:
266.3 KB (272,651 bytes)

Product version:
1.9

Copyright:
www.RemoteABC.com

Trademarks:
Remote ABC

Original file name:
RemoteABC.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\gemote\gemote.exe

File PE Metadata
Compilation timestamp:
6/20/1992 7:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0xB6641

Entry point:
9C, 60, E8, 00, 00, 00, 00, 5D, 83, ED, 07, 8D, 8D, 43, FB, FF, FF, 80, 39, 01, 0F, 84, 42, 02, 00, 00, C6, 01, 01, 8B, C5, 2B, 85, D7, FA, FF, FF, 89, 85, D7, FA, FF, FF, 01, 85, 07, FB, FF, FF, 8D, B5, 4B, FB, FF, FF, 01, 06, 55, 56, 6A, 40, 68, 00, 10, 00, 00, 68, 00, 10, 00, 00, 6A, 00, FF, 95, 7F, FB, FF, FF, 85, C0, 0F, 84, 69, 03, 00, 00, 89, 85, FF, FA, FF, FF, E8, 00, 00, 00, 00, 5B, B9, 67, 03, 00, 00, 03, D9, 50, 53, E8, B0, 02, 00, 00, 5E, 5D, 8B, 36, 8B, FD, 03, BD, C7, FA, FF, FF, 8B, DF, 83...
 
[+]

Entropy:
7.9771

Packer / compiler:
NsPacK V3.7

Service
Display name:
gemote

Service name:
gemote_Server_

Description:
gemote Control!

Type:
Win32OwnProcess, InteractiveProcess


Remove gemote.exe - Powered by Reason Core Security